Aller au contenu

gdazouzou

Membres
  • Compteur de contenus

    14
  • Inscription

  • Dernière visite

gdazouzou's Achievements

Junior Member

Junior Member (3/12)

0

Réputation sur la communauté

  1. Bonjour, J'ai un problème sur mon pc je veux installer un connecteur wifi usb nintendo pour que mon fils puisse jouer à la DS en wifi. Je l'avais installer et il fonctionnait correctement mais je l'ai désinstaller. Lorsque je lance l'installation il me met erreur de partage de la connexion internet (6) et arrête l'installation, donc je suis allée sur ma connexion internet (wanadoo 1024) et j'ai voulu mettre le partage des connexions et là il me met que le serveur RPC n'est pas disponible et pourtant il est activé en automatique. Si quelqu'un à une réponse merci d'avance. Nathalie
  2. Non ça à l'air bon, faut-il que je garde avast ou antivir ? Merci pour tout Nath
  3. KASPERSKY ONLINE SCANNER REPORT Sunday, July 30, 2006 7:41:51 PM Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600) Kaspersky Online Scanner version: 5.0.83.0 Kaspersky Anti-Virus database last update: 30/07/2006 Kaspersky Anti-Virus database records: 198299 Scan Settings Scan using the following antivirus database standard Scan Archives true Scan Mail Bases true Scan Target My Computer A:\ C:\ D:\ E:\ Scan Statistics Total number of scanned objects 65056 Number of viruses found 0 Number of infected objects 0 / 0 Number of suspicious objects 0 Duration of the scan process 00:52:30 Infected Object Name Virus Name Last Action C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\132aca938fecc86a592dd0533eab0a13_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9ab06704f918fde26e1892f35d41c1c4_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b8f6b3288783365f595d8e0ae929463d_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d348e77d1945323f468cb0dc828589ec_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cert8.db Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\formhistory.dat Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\history.dat Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\key3.db Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\parent.lock Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\call256.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\callmember256.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\chat512.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\contactgroup256.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\index2.dat Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\message256.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\profile16384.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\transfer256.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\transfer512.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user1024.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user16384.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user4096.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\voicemail256.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Cookies\index.dat Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_001_ Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_002_ Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_003_ Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_MAP_ Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Historique\History.IE5\index.dat Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Historique\History.IE5\MSHist012006073020060731\index.dat Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\Propriétaire\NTUSER.DAT Object is locked skipped C:\Documents and Settings\Propriétaire\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\Propriétaire\UserData\index.dat Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\BWDocMap.pht Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\BWInfopakMap.pht Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chandir.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chandir.idx Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chn.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chn.idx Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\D0000000.FCS Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\inuse.txt Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\L0000002.FCS Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\main.log Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs.idx Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_die.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_die.idx Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_dnd.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_dnd.idx Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_ext.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_ext.idx Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_rcv.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_rcv.idx Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\storydb.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\storydb.idx Object is locked skipped C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP637\change.log Object is locked skipped C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped C:\WINDOWS\pfirewall.log Object is locked skipped C:\WINDOWS\SchedLgU.Txt Object is locked skipped C:\WINDOWS\SoftwareDistribution\EventCache\{4884BA1D-D3D5-449B-A484-8E58FB2D67AD}.bin Object is locked skipped C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped C:\WINDOWS\Sti_Trace.log Object is locked skipped C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\default Object is locked skipped C:\WINDOWS\system32\config\default.LOG Object is locked skipped C:\WINDOWS\system32\config\SAM Object is locked skipped C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\SECURITY Object is locked skipped C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped C:\WINDOWS\system32\config\software Object is locked skipped C:\WINDOWS\system32\config\software.LOG Object is locked skipped C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\system Object is locked skipped C:\WINDOWS\system32\config\system.LOG Object is locked skipped C:\WINDOWS\system32\h323log.txt Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped C:\WINDOWS\Temp\Perflib_Perfdata_54c.dat Object is locked skipped C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped C:\WINDOWS\wiadebug.log Object is locked skipped C:\WINDOWS\wiaservc.log Object is locked skipped C:\WINDOWS\WindowsUpdate.log Object is locked skipped Scan process completed.
  4. ewido anti-spyware - Scan Report --------------------------------------------------------- + Created at: 16:35:08 30/07/2006 + Scan result: C:\Program Files\IncrediMail\bin\Incredimail Premium + CRACK + KEYGEN.exe -> Downloader.Zlob.nr : Cleaned with backup (quarantined). C:\Program Files\eMule\Incoming\Incredimail Premium + CRACK + KEYGEN.exe -> Downloader.Zlob.nr : Cleaned with backup (quarantined). :mozilla.247:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned. :mozilla.248:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned. :mozilla.249:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned. :mozilla.250:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned. :mozilla.251:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned. :mozilla.267:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.324:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.327:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.333:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.334:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.335:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.339:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.340:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.585:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.791:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.797:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.876:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned. :mozilla.877:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned. :mozilla.233:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Adtech : Cleaned. :mozilla.234:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Adtech : Cleaned. C:\Documents and Settings\Propriétaire\Cookies\[email protected][2].txt -> TrackingCookie.Adtech : Cleaned. :mozilla.378:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.379:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.380:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.381:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.382:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.162:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Atdmt : Cleaned. :mozilla.275:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned. :mozilla.145:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Bluestreak : Cleaned. :mozilla.328:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned. :mozilla.59:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned. C:\Documents and Settings\Propriétaire\Cookies\[email protected][1].txt -> TrackingCookie.Bluestreak : Cleaned. C:\RECYCLER\S-1-5-21-436374069-1788223648-839522115-1003\Dc49\proprié[email protected][2].txt -> TrackingCookie.Bluestreak : Cleaned. :mozilla.691:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.692:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.693:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.11:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.12:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.13:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.14:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.817:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.818:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.819:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.894:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned. :mozilla.457:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Counted : Cleaned. :mozilla.134:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned. :mozilla.131:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Estat : Cleaned. :mozilla.9:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Estat : Cleaned. C:\Documents and Settings\Propriétaire\Cookies\[email protected][1].txt -> TrackingCookie.Estat : Cleaned. C:\RECYCLER\S-1-5-21-436374069-1788223648-839522115-1003\Dc49\proprié[email protected][1].txt -> TrackingCookie.Estat : Cleaned. :mozilla.193:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.194:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.195:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.569:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.570:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.571:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.572:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.573:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.889:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.891:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.122:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.144:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.178:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.196:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.215:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.216:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.217:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.239:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.23:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.242:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.259:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.260:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.268:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.509:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.513:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.564:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.597:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.602:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.603:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.636:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.667:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.706:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.712:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.730:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.775:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.164:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.165:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.166:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.167:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.168:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.465:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.466:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.664:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.880:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.881:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.882:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.883:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.884:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.903:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.940:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.941:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.942:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.56:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Liveperson : Cleaned. :mozilla.57:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Liveperson : Cleaned. :mozilla.58:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Liveperson : Cleaned. :mozilla.59:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Liveperson : Cleaned. :mozilla.292:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Mediaplex : Cleaned. :mozilla.57:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned. :mozilla.58:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned. :mozilla.61:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Overture : Cleaned. :mozilla.62:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Overture : Cleaned. :mozilla.848:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.849:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.850:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.851:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.707:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned. :mozilla.708:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned. :mozilla.91:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.95:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.96:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.97:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.98:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.925:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Revenue : Cleaned. :mozilla.724:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.725:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.726:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.727:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.728:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.236:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.237:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.439:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.440:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.504:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.505:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.507:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.508:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.511:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.682:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.683:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.711:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.854:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.855:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.123:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.124:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.125:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.126:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.75:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.76:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.77:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.558:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned. :mozilla.559:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned. :mozilla.116:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.117:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.118:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.119:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.120:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.45:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.50:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. C:\Documents and Settings\Propriétaire\Cookies\[email protected][2].txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.656:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned. :mozilla.243:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned. :mozilla.244:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned. :mozilla.130:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.132:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.135:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.51:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.52:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.53:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Weborama : Cleaned. C:\Documents and Settings\Propriétaire\Cookies\[email protected][2].txt -> TrackingCookie.Weborama : Cleaned. :mozilla.140:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned. :mozilla.141:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned. :mozilla.254:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned. :mozilla.255:C:\Documents and Settings\Propriétaire\Application Data\Phoenix\Profiles\default\cz7kaxl3.slt\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned. :mozilla.755:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned. :mozilla.100:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned. :mozilla.101:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned. :mozilla.102:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned. :mozilla.104:C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned. ::Report end Script clean par Malekal_morte - http://www.malekal.com *** SUPPRESSION DES FICHIERS *** Suppressions de trojans/vers sur... C:\WINDOWS\smdat32m.sys FOUND C:\WINDOWS\unvise32qt.exe FOUND *** Suppressions des adware connus... Logfile of HijackThis v1.99.1 Scan saved at 18:01:47, on 30/07/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\Program Files\ewido anti-spyware 4.0\guard.exe C:\WINDOWS\System32\FTRTSVC.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\CAPRPCSK.EXE C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe C:\Program Files\Logitech\iTouch\iTouch.exe C:\Program Files\QuickTime\qttask.exe C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE C:\Program Files\Logitech\ImageStudio\LogiTray.exe C:\Program Files\Winamp\winampa.exe C:\Program Files\Ulead Systems\Ulead Photo Explorer 7.0\Monitor.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\Macrogaming\SweetIM\SweetIM.exe C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe C:\Program Files\Skype\Phone\Skype.exe C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe C:\Program Files\Logitech\ImageStudio\LowLight.exe C:\Program Files\WiFiConnector\NintendoWFCReg.exe C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE C:\OLIFAXVX\TOOLBAR.EXE C:\PROGRA~1\Wanadoo\ComComp.exe C:\WINDOWS\system32\ntvdm.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\PROGRA~1\Wanadoo\Watch.exe C:\Program Files\Internet Explorer\iexplore.exe C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis.zip\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/webhp?sourceid=navcli...fr&ie=UTF-8 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe" O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [urlLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe O4 - HKLM\..\Run: [Wanadoo Messager.exe] "C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe" /background O4 - HKLM\..\Run: [CAPON] C:\WINDOWS\System32\Spool\Drivers\w32x86\3\CAPONN.EXE O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [ulead Memory Card Detector] C:\Program Files\Ulead Systems\Ulead Photo Explorer 7.0\Monitor.exe O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe" "ZTE Corporation\ZXDSL852" O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe" O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKCU\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe O4 - Startup: Barre d'Outils Olitec.lnk = C:\OLIFAXVX\TOOLBAR.EXE O4 - Startup: Moniteur Fax-Voix.lnk = C:\OLIFAXVX\MONITEUR.EXE O4 - Global Startup: Fenêtre d'état Canon LBP-800.LNK = C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE O4 - Global Startup: Lancer l'utilitaire d'enregistrement.lnk = C:\Program Files\WiFiConnector\NintendoWFCReg.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU) O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/d...can_unicode.cab O16 - DPF: {C45B1500-7B63-47C2-AB25-C28CB46AFDEE} (Media Bar) - http://sib1.od2.com/common/musicmanager/in...nagerPlugin.CAB O17 - HKLM\System\CCS\Services\Tcpip\..\{A93E0375-4ADC-47BD-9E91-2909954CED87}: NameServer = 80.10.246.130 80.10.246.3 O18 - Protocol: bw+0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O18 - Protocol: offline-8876480 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing) O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
  5. Sunday, July 30, 2006 5:54:50 PM Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600) Kaspersky Online Scanner version: 5.0.83.0 Kaspersky Anti-Virus database last update: 30/07/2006 Kaspersky Anti-Virus database records: 198286 Scan Settings Scan using the following antivirus database standard Scan Archives true Scan Mail Bases true Scan Target My Computer A:\ C:\ D:\ E:\ Scan Statistics Total number of scanned objects 76711 Number of viruses found 3 Number of infected objects 1607 / 0 Number of suspicious objects 0 Duration of the scan process 01:00:20 Infected Object Name Virus Name Last Action C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\132aca938fecc86a592dd0533eab0a13_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9ab06704f918fde26e1892f35d41c1c4_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b8f6b3288783365f595d8e0ae929463d_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d348e77d1945323f468cb0dc828589ec_34a4a560-72e9-43c5-98bc-646015d37ab9 Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\cert8.db Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\history.dat Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\key3.db Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\parent.lock Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\call256.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\callmember256.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\chat512.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\contactgroup256.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\index2.dat Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\message256.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\profile16384.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\transfer256.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\transfer512.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user1024.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user16384.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\user4096.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Application Data\Skype\nathagaga\voicemail256.dbb Object is locked skipped C:\Documents and Settings\Propriétaire\Cookies\index.dat Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_001_ Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_002_ Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_003_ Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Mozilla\Firefox\Profiles\cs829600.default\Cache\_CACHE_MAP_ Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Historique\History.IE5\index.dat Object is locked skipped C:\Documents and Settings\Propriétaire\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\Propriétaire\NTUSER.DAT Object is locked skipped C:\Documents and Settings\Propriétaire\ntuser.dat.LOG Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\BWDocMap.pht Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\BWInfopakMap.pht Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chandir.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chandir.idx Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chn.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\chn.idx Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\D0000000.FCS Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\inuse.txt Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\L0000002.FCS Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\main.log Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs.idx Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_die.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_die.idx Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_dnd.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_dnd.idx Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_ext.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_ext.idx Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_rcv.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\prs_rcv.idx Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\storydb.dat Object is locked skipped C:\Program Files\Logitech\Desktop Messenger\8876480\Users\Nathalie\Data\storydb.idx Object is locked skipped C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191421.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191422.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191423.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191424.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191425.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191426.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191427.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191428.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191429.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191430.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191431.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191432.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191433.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191434.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191435.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191436.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191437.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191438.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191439.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191440.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191441.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191442.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191443.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191444.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191445.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191446.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191447.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191448.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191449.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191450.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191451.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191452.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191453.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191454.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191455.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191456.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191457.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191458.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191459.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191460.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191461.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191462.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191463.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191464.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191465.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191466.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191467.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191468.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191469.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191470.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191471.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191472.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191473.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191474.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191475.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191476.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191477.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191478.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191479.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191480.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191481.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191482.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191483.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191484.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191485.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191486.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191487.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191488.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191489.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191490.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191491.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191492.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191493.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191494.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191495.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191496.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191497.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191498.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191499.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191500.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191501.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191502.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191503.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191504.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191505.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191506.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191507.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191508.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191509.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191510.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191511.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191512.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191513.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191514.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191515.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191516.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191517.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191518.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191519.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191520.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191521.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191522.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191523.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191524.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191525.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191526.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191527.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191528.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191529.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191530.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191531.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191532.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191533.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191534.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191535.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191536.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191537.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191538.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191539.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191540.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191541.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191542.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191543.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191544.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191545.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191546.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191547.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191548.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191549.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191550.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191551.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191552.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191553.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191554.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191555.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191556.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191557.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191558.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191559.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191560.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191561.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191562.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191563.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191564.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191565.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191566.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191567.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191568.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191569.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191570.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191571.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191572.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191573.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191574.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191575.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191576.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191577.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191578.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191579.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191580.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191581.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191582.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191583.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191584.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191585.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191586.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191587.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191588.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191589.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191590.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191591.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191592.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191593.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191594.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191595.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191596.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191597.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191598.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191599.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191600.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191601.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191602.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191603.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191604.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191605.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191606.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191607.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191608.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191609.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191610.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191611.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191612.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191613.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191614.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191615.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191616.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191617.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191618.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191619.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191620.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191621.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191622.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191623.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191624.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191625.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191626.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191627.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191628.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191629.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191630.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191631.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191632.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191633.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191634.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191635.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191636.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191637.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191638.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191639.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191640.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191641.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191642.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191643.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191644.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191645.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191646.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191647.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191648.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191649.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191650.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191651.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191652.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191653.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191654.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191655.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191656.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191657.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191658.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191659.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191660.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191661.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191662.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191663.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191664.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191665.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191666.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191667.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191668.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191669.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191670.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191671.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191672.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191673.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191674.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191675.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191676.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191677.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191678.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191679.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191680.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191681.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191682.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191683.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191684.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191685.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191686.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191687.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191688.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191689.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191690.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191691.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191692.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191693.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191694.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191695.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191696.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191697.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191698.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191699.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191700.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191701.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191702.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191703.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191704.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191705.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191706.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191707.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191708.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191709.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191710.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191711.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191712.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191713.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191714.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191715.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191716.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191717.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191718.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191719.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191720.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191721.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191722.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191723.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191724.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191725.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191726.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191727.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191728.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191729.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191730.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191731.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191732.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191733.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191734.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191735.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191736.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191737.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191738.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191739.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191740.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191741.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191742.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191743.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191744.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191745.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191746.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191747.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191748.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191749.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191750.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\System Volume Information\_restore{F2DD2AAC-8C8D-4C7E-A2D3-F4C9EBB0EF08}\RP561\A0191751.exe Infected: P2P-Worm.Win32.VB.dz skipped C:\S
  6. C:\WINDOWS\System32\wpa.dbl -->30/07/2006 14:58:53 C:\WINDOWS\System32\nvapps.xml -->30/07/2006 14:58:53 C:\WINDOWS\System32\perfh040.dat -->16/07/2006 19:59:25 C:\WINDOWS\System32\perfc040.dat -->16/07/2006 19:59:25 C:\WINDOWS\System32\PerfStringBackup.INI -->16/07/2006 19:55:10 C:\WINDOWS\System32\perfh00C.dat -->16/07/2006 19:55:10 C:\WINDOWS\System32\perfh009.dat -->16/07/2006 19:55:10 C:\WINDOWS\System32\perfc00C.dat -->16/07/2006 19:55:10 C:\WINDOWS\System32\perfc009.dat -->16/07/2006 19:55:10 C:\WINDOWS\System32\zllictbl.dat -->16/07/2006 18:53:56 C:\WINDOWS\System32\MRT.exe -->07/07/2006 03:21:46 C:\WINDOWS\System32\rasmans.dll -->22/06/2006 12:48:06 C:\WINDOWS\System32\WgaLogon.dll -->19/06/2006 16:20:42 C:\WINDOWS\System32\LegitCheckControl.dll -->19/06/2006 16:19:42 C:\WINDOWS\System32\WgaTray.exe -->19/06/2006 16:19:26 C:\WINDOWS\System32\CONFIG.NT -->06/06/2006 06:36:39 C:\WINDOWS\System32\jgpl400.dll -->01/06/2006 20:48:44 C:\WINDOWS\System32\jgdw400.dll -->01/06/2006 20:48:44 C:\WINDOWS\System32\aswBoot.exe -->31/05/2006 11:02:04 C:\WINDOWS\System32\AVASTSS.scr -->31/05/2006 10:54:35 C:\WINDOWS\System32\shdocvw.dll -->29/05/2006 17:29:14 C:\WINDOWS\System32\mshtml.dll -->19/05/2006 17:09:50 C:\WINDOWS\System32\iphlpapi.dll -->19/05/2006 15:23:35 C:\WINDOWS\System32\dnsapi.dll -->19/05/2006 15:23:35 C:\WINDOWS\System32\dhcpcsvc.dll -->19/05/2006 15:23:35 C:\WINDOWS\pfirewall.log -->30/07/2006 15:18:07 C:\WINDOWS\ModemLog_OLITEC Self Memory 2000 PnP.txt -->30/07/2006 14:59:03 C:\WINDOWS\QTFont.qfn -->30/07/2006 14:58:49 C:\WINDOWS\0.log -->30/07/2006 14:58:42 C:\WINDOWS\wiadebug.log -->30/07/2006 14:58:20 C:\WINDOWS\WindowsUpdate.log -->30/07/2006 14:58:19 C:\WINDOWS\wiaservc.log -->30/07/2006 14:58:17 C:\WINDOWS\bootstat.dat -->30/07/2006 14:58:13 C:\WINDOWS\ntbtlog.txt -->30/07/2006 14:57:03 C:\WINDOWS\setupact.log -->30/07/2006 13:01:19 C:\WINDOWS\SchedLgU.Txt -->30/07/2006 12:57:21 C:\WINDOWS\pfirewall.log.old -->29/07/2006 18:29:44 C:\WINDOWS\Ulead32.ini -->26/07/2006 18:40:50 C:\WINDOWS\setupapi.log -->26/07/2006 18:15:41 C:\WINDOWS\wmsetup.log -->17/07/2006 19:03:07 Le volume dans le lecteur C n'a pas de nom. Le num‚ro de s‚rie du volume est A0F5-2C5F R‚pertoire de C:\WINDOWS\system32 20/08/2004 01:09 6ÿ144 csrss.exe 1 fichier(s) 6ÿ144 octets 0 R‚p(s) 36ÿ138ÿ496ÿ000 octets libres Le volume dans le lecteur C n'a pas de nom. Le num‚ro de s‚rie du volume est A0F5-2C5F R‚pertoire de C:\Program Files 30/07/2006 15:00 <REP> . 30/07/2006 15:00 <REP> .. 03/12/2004 19:19 <REP> Activision 12/11/2004 21:16 <REP> Adobe 20/03/2006 20:45 <REP> ADSL Autoconnect 25/07/2003 18:39 <REP> Agfa 14/11/2003 21:10 <REP> ahead 28/04/2005 19:10 <REP> AIDA32 - Personal System Information 07/05/2006 09:29 <REP> Alwil Software 26/07/2003 14:16 <REP> ArcSoft 07/05/2006 09:19 <REP> AviSynth 2.5 25/07/2003 17:53 <REP> AvRack 09/07/2006 14:30 <REP> BankPerfect 17/01/2005 21:43 <REP> Bayo 26/07/2003 14:20 <REP> Canon 02/10/2004 13:24 <REP> Click-N-Stick 27/04/2005 20:04 <REP> Common Files 25/07/2003 17:21 <REP> ComPlus Applications 18/08/2005 20:27 <REP> Dictionnaire 27/07/2003 11:52 <REP> directx 16/07/2006 19:52 <REP> DivX 02/02/2005 19:09 <REP> DivXPack.NG 27/04/2005 20:04 <REP> DivXthŠque 16/07/2006 19:53 <REP> EA Games 10/09/2003 11:30 <REP> EHMINSTALL 14/11/2003 21:23 <REP> Eidos Interactive 24/10/2003 18:15 <REP> Elaborate Bytes 19/10/2003 11:32 <REP> emme 16/07/2006 19:52 <REP> eMule 29/10/2005 09:14 <REP> eurobarre 19/06/2004 18:50 <REP> Europress 29/01/2005 17:19 <REP> ffdshow 07/05/2006 09:27 <REP> Fichiers communs 29/01/2005 14:28 <REP> FlasKMPEG_594h 29/01/2005 17:18 <REP> Gabest 27/04/2005 20:05 <REP> GameSpy Arcade 20/04/2006 19:02 <REP> Gestion Film 26/02/2006 13:22 <REP> Google 05/02/2006 16:31 <REP> Hasbro Interactive 30/07/2006 15:01 <REP> HijackThis 07/05/2006 08:47 <REP> IKEA Home Planner Kitchen 07/05/2006 08:44 <REP> IncrediMail 26/07/2003 14:12 <REP> InterActual 19/06/2006 13:00 <REP> Internet Explorer 07/05/2006 08:49 <REP> IrfanView 08/02/2006 19:25 <REP> Java 26/07/2003 10:28 <REP> JavaSoft 04/03/2006 11:20 <REP> kakuro master demo 24/12/2004 19:57 <REP> Kazaa 24/12/2004 19:58 <REP> Kazaa K++ 03/06/2005 20:50 <REP> Lavasoft 07/05/2006 08:49 <REP> LearnChinese 20/12/2003 20:35 <REP> LEGO Interactive 28/12/2005 19:06 <REP> LGGSM 03/12/2004 19:28 <REP> Logitech 07/05/2006 08:51 <REP> Ludiclub 28/01/2006 18:04 <REP> Macrogaming 13/10/2005 18:07 <REP> Media Player Classic 17/10/2005 07:18 <REP> Mediabarre 29/05/2004 18:11 <REP> Messager Wanadoo 16/02/2005 10:38 <REP> Messenger 07/05/2006 09:16 <REP> Micro Application 25/07/2003 17:24 <REP> microsoft frontpage 27/04/2005 19:35 <REP> Microsoft Games 26/07/2006 18:43 <REP> Microsoft Money 25/06/2006 19:57 <REP> Microsoft Money 2005 26/07/2003 13:54 <REP> Microsoft Office 28/07/2003 21:38 <REP> Microsoft Plus! 26/07/2003 13:57 <REP> Microsoft Visual Studio 03/12/2003 17:10 <REP> Milan 02/02/2005 22:49 <REP> Morgan 10/10/2004 09:51 <REP> Movie Maker 30/07/2006 15:01 <REP> Mozilla Firefox 30/07/2006 12:17 <REP> Mozilla Thunderbird 25/07/2003 17:21 <REP> MSN 26/12/2004 18:14 <REP> MSN Apps 25/07/2003 17:21 <REP> MSN Gaming Zone 11/02/2006 09:24 <REP> MSN Messenger 20/03/2006 21:58 <REP> MyWay 27/01/2005 21:28 <REP> Neodivx 16/07/2006 19:43 <REP> NET Traffic Meter 10/10/2004 09:46 <REP> NetMeeting 26/01/2005 19:03 <REP> nutri 09/07/2006 13:25 <REP> OriaSoft 12/04/2006 22:53 <REP> Outlook Express 20/09/2004 12:25 <REP> Pense-bete 07/05/2006 09:09 <REP> ppStream 15/10/2003 16:34 <REP> Puzzle Bobble 2x 10/09/2005 15:04 <REP> QO Labs 10/09/2005 20:24 <REP> QQLive 18/10/2003 15:22 <REP> QuickTime 16/07/2006 19:31 <REP> R19 Software 15/04/2004 17:06 <REP> Real 25/07/2003 17:53 <REP> Realtek Sound Manager 04/01/2005 18:15 <REP> ReflexiveArcade 07/05/2006 09:09 <REP> RegSupreme 27/04/2005 20:06 <REP> Ricochet Xtreme 07/05/2006 09:10 <REP> Ripp-it_AM 02/02/2005 22:48 <REP> Rippackv3 25/07/2003 18:15 <REP> Roxio 25/07/2003 17:23 <REP> Services en ligne 21/10/2003 20:21 <REP> Sierra On-Line 22/05/2005 17:57 <REP> Skype 08/01/2004 14:07 <REP> SodeaSoft 07/05/2006 09:10 <REP> Soulseek 07/05/2006 09:11 <REP> Spybot - Search & Destroy 04/03/2006 20:52 <REP> sudoku_quest 16/07/2006 20:02 <REP> Sunbelt Software 07/05/2006 08:59 <REP> Symantec 07/05/2006 10:03 <REP> SymNetDrv 28/01/2006 14:26 <REP> Taroteam 17/12/2003 14:24 <REP> THQ 07/05/2006 08:47 <REP> Ubi Soft 24/04/2005 13:37 <REP> UBISOFT 30/01/2005 18:12 <REP> Ulead Systems 25/07/2003 18:03 <REP> VIA Technologies, Inc 30/07/2006 14:58 <REP> Wanadoo 25/05/2004 08:39 <REP> Wanadoo Messager 19/07/2004 07:28 <REP> Weight Watchers 18/04/2006 19:21 <REP> WiFiConnector 05/09/2004 12:32 <REP> Winamp 15/04/2004 17:06 <REP> Windows Media Components 16/02/2006 08:27 <REP> Windows Media Player 10/10/2004 09:45 <REP> Windows NT 25/02/2005 19:12 <REP> WinRAR 12/10/2003 19:09 <REP> WinZip 25/07/2003 17:24 <REP> xerox 08/02/2006 19:23 <REP> ZTE Corporation 0 fichier(s) 0 octets 128 R‚p(s) 36ÿ138ÿ483ÿ712 octets libres Le volume dans le lecteur C n'a pas de nom. Le num‚ro de s‚rie du volume est A0F5-2C5F R‚pertoire de C:\Program Files\fichiers communs 07/05/2006 09:27 <REP> . 07/05/2006 09:27 <REP> .. 25/07/2003 18:15 <REP> Adaptec Shared 12/11/2004 21:16 <REP> Adobe 14/11/2003 21:10 <REP> Ahead 26/07/2003 13:57 <REP> Designer 04/12/2004 12:18 <REP> DirectX 15/04/2004 17:06 <REP> FotoWire 20/12/2003 20:35 <REP> InstallShield 03/12/2004 19:29 <REP> Logitech 22/12/2005 18:57 <REP> Microsoft Shared 25/07/2003 17:22 <REP> MSSoap 25/07/2003 18:10 <REP> ODBC 18/08/2005 21:50 <REP> Real 25/07/2003 17:22 <REP> Services 30/01/2005 18:13 <REP> sndp202 25/07/2003 18:10 <REP> SpeechEngines 07/05/2006 09:27 <REP> Symantec Shared 12/04/2006 22:53 <REP> System 30/01/2005 18:12 <REP> Ulead Systems 23/05/2004 16:45 <REP> Vbox 18/08/2005 21:50 <REP> xing shared 0 fichier(s) 0 octets 22 R‚p(s) 36ÿ138ÿ487ÿ808 octets libres Le volume dans le lecteur C n'a pas de nom. Le num‚ro de s‚rie du volume est A0F5-2C5F R‚pertoire de C:\Program Files\common files 27/04/2005 20:04 <REP> . 27/04/2005 20:04 <REP> .. 02/08/2004 17:33 <REP> System 0 fichier(s) 0 octets 3 R‚p(s) 36ÿ138ÿ487ÿ808 octets libres Le volume dans le lecteur C n'a pas de nom. Le num‚ro de s‚rie du volume est A0F5-2C5F R‚pertoire de C:\ 24/05/2001 13:59 162ÿ304 UNWISE.EXE 1 fichier(s) 162ÿ304 octets 0 R‚p(s) 36ÿ138ÿ487ÿ808 octets libres c:\Documents and Settings\Propri‚taire\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\fpupdatepl\fpupdatepl.exe c:\Documents and Settings\Propri‚taire\Application Data\Microsoft\Installer\{9BBE1474-DA14-4309-AD6E-75673873EB5D}\wwicon.exe c:\Documents and Settings\Propri‚taire\Application Data\Microsoft\Installer\{F86FFD86-1966-4C6C-99D9-44A6E7AB97E3}\ARPPRODUCTICON.exe c:\Documents and Settings\Propri‚taire\Bureau\chercher\chercher\LFiles.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\_ISDEL.EXE c:\Documents and Settings\Propri‚taire\Local Settings\Temp\12exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\13exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\14exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\17exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\18exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\21exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\23exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\24exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\25exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\27exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\28exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\31exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\36exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\37exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\39exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\3exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\44exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\47exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\48exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\52exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\54exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\55exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\61exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\63exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\67exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\69exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\73exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\74exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\75exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\79exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\7exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\81exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\84exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\85exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\87exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\8exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\91exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\93exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\94exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\95exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\96exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\99exmodul32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\AutoRun.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\eauninstall.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBU1C6.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBU21.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBU3FB.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBUC6.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\EBUE.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\First15.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\Harry Potter Quidditch World Cup_uninst.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\msnsearch.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\nsu9A.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\SETUP.EXE c:\Documents and Settings\Propri‚taire\Local Settings\Temp\setup_wm.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\uneb.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\VP6Install.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\xpinstall.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\0fced5b5-3b0d-43af-856a-d41e06255694\ADSL Autoconnect.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccApp.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccEvtMgr.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccLgView.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccPwdSvc.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\ccSetMgr.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ccCommon\NMain.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ImInstaller\IncrediMail\incredimail_install.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\ins1.tmp\LDMClient.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\IXP000.TMP\DX6SU100.EXE c:\Documents and Settings\Propri‚taire\Local Settings\Temp\pft9E~tmp\_ISDel.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\pft9E~tmp\Setup.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\pft9E~tmp\Reader\AcroRd32.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\R‚pertoire temporaire 1 pour neodivx.zip\setup.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\R‚pertoire temporaire 1 pour PRINCE.OF.PERSIA SANDS OF TIME-NOCD-Crack !.zip\PRINCE.OF.PERSIA SANDS OF TIME-NOCD-Crack !\pop.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\{86DE85AD-1CB2-4E11-ACF8-1C394CD10F4A}\{41188D27-E354-40A2-9C38-E361E830A9C1}\SendStats.exe c:\Documents and Settings\Propri‚taire\Local Settings\Temp\{C9476F59-74AB-4E4B-A336-3A7D0FECB615}\SweetIESetup.exe c:\Documents and Settings\Propri‚taire\Menu D‚marrer\Programmes\COKTEL\Configuration 3D.exe c:\Documents and Settings\Propri‚taire\Menu D‚marrer\Programmes\COKTEL\D‚sinstalleur Coktel.exe c:\Documents and Settings\Propri‚taire\Mes documents\QQLive1.0Beta01.exe c:\Documents and Settings\Propri‚taire\Mes documents\Ecole\ec_co_pt.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Ecole\ec_cp.exe c:\Documents and Settings\Propri‚taire\Mes documents\Inventaire\Ecole\ec_co_pt.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Inventaire\Ecole\ec_cp.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\dava.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\DisneylandParis_AH0506_F.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\install.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\Learn_Chinese_2006_v40_lechinois.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes fichiers re‡us\poker.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\DOS4GW.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\INSTALL.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\LOADPATS.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\OBELIX.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes Jeux\Asterix & Obelix\OBELIXW.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\71.89_win2kxp_international.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\aawsepersonal.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\ac3filter_1_01a_rc1.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\AIDA_32_3.93_Personnal_Edition.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\dic_vietnamien.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\dictionnaire_setup.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\FoxTarot400.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\GoogleEarthSetup.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\gspot221.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\ihp_kitchen1_6_2.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\INFO.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\INSTALL.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\jecreemacuisineavecleroymerlin-1_0_0.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\mpc_install_6.4.8.4_fr.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\MW_ATIUP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\PixelFusionWMP130.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\pllangs.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\pplivefoot1_2full.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\PPLiveSetup.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\ppstreamsetup.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\RegSupreme_setup.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\ri4m_setup_indispensables_rv10.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\RIAM_v402c_setup.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\SC2000.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\SetupRiamCodecPack_4.0.1.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\setupwingrosmaig.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\SkypeSetup.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\VDETECT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\videoinspector.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\VRF_DLL.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Gagner\ebsetupfr.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Gagner\KiddiesBarreIntall.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Gagner\mb152.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Photo\picasa2-current.exe c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\INFO.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\INSTALL.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\MW_ATIUP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\SC2000.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VDETECT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VRF_DLL.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\AHEAD\VESA.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\APPIAN\APVESA.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\ATI\MW_ATIUP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\COMPAQ\CPQVESA.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\DIAMOND\24XVESA.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\DIAMOND\VESA.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\GENOA\GENBOX.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\GENOA\VESABOX.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\GENOA\VESAMODE.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\HEADLAND\HT-VESA.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\IBM\VESA.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\IBM\XGAVESA.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\PARADISE.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESA.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESA1A1B.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESA1C.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESA1D.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\PARADISE\VESAX.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\SPIDER\SETMODE.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\SPIDER\SPBIOS.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\TECMAR\VESATEST.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\TRIDENT\VESA.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\UNIVESA\UNIVESA.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\WESTERN\VESA1A1B.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\WESTERN\VESA1C.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\WESTERN\VESA1D.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Mes t‚l‚chargements\Sim city 2000\VESA\WESTERN\VESAX.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Money\autorun.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\install.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\IE\encpack.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\IE\ie6setup.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\copymar.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\dw.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\fontinst.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\mnybb.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\mnybbsvc.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\mnyimprt.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\mnyinst.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\msmoney.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\salv.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\signin.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\uninst.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\money\update.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\PSS\mdac_typ.exe c:\Documents and Settings\Propri‚taire\Mes documents\Money\PSS\msizap.exe c:\Documents and Settings\Propri‚taire\Mes documents\Office\INSTALL.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\DCOM95.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IE5COMP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IE5OEM.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IE5SETUP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IEAK5.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\IEAK5CD.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\OAINST.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\IE5\FR\VRML2C.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\MSI\INSTMSI.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\MSI\INSTMSIW.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\OEM\TOOLS\CIW\CUSTWIZ.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\ARTGALRY\ARTGALRY.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\ARTGALRY\CAG.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\DATAMAP\DATAINST.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\DATAMAP\MSMAP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\DBREP\WZCNFLCT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\EQUATION\EQNEDT32.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\MSINFO\MSINFO32.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\MSINFO\OFFPROV.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\ORGCHART\ORGCHART.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\PHOTOED\PHOTOED.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\ADMCGI\SCRIPTS\FPADMCGI.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\CFGWIZ.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\FPREMADM.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\FPSERVER.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\FPSRVADM.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\HTIMAGE.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\IMAGEMAP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\BIN\TCPTEST.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\ISAPI\FPCOUNT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\FPCOUNT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\SHTML.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\_VTI_ADM\ADMIN.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\40\_VTI_BIN\_VTI_AUT\AUTHOR.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\MSSHARED\WEBSRVEX\FPWEBS\SERVER\VHTTPD32.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\OUT40.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\CCMDLIST.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\CNFNOT32.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\CWIMPORT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\95\MAPISP32.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\95\ML3XEC16.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\95\NEWPROF.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\95\SCANPST.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\NT\MAPISP32.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\NT\ML3XEC16.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\NT\NEWPROF.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\COMMON\SYSTEM\MAPI\1036\NT\SCANPST.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\FP98\VER3\BIN\FP98SADM.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\FP98\VER3\BIN\FP98SWIN.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\FP98\VER3\BIN\FPSRVADM.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\FP98\VER3\BIN\FPSRVWIN.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\BINDER.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\CONVTEXT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\DATCRT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\DLGCANCL.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\EXCEL.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\FINDER.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\FINDFAST.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\FRONTPG.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\GRAPH9.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MAKECERT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSACCESS.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSACNV30.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSIMPORT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSO7FTP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSO7FTPA.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSO7FTPS.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSOHTMED.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\MSQRY32.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\NSREX.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\OFFCLN9.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\ORG11SVR.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\ORG21SVR.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\OSA9.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\OTUNEUP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\OUTLOOK.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\POWERPNT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\REXPROXY.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\RXCBPRXY.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\SELFCERT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\SETLANG.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\VTIDISC.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\VTIFORM.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\VTIPRES.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\WAVTOASF.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\WEBPUB.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\WINWORD.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\MSOFFICE.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\MSOHELP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\NFCLEAN.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\OLFMOD32.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\OLFSETUP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\OLFSNT40.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\PROJWIZ.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\SCHDPL32.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\WFXMSRVR.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\1036\WRKGADM.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\FORMS\1036\REGCFG.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\MSOFFICE\OFFICE\XLATORS\PPVIEW32.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\SNAPVIEW\SNAPVIEW.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\PFILES\VSTUDIO\COMMON\IDE\IDE98\MSE.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SP\DCOM\DCOM95.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SP\OAINST\OAINST.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SP\OAINST\OFFOLE.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\BCP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\CMDWRAP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\CNFGSVR.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\DCOMSCM.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\DISTRIB.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\DTSRUN.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\DTSWIZ.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\LOGREAD.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\ODBCCMPT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\OSQL.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\REBUILDM.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\REGREBLD.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\REPLMERG.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SCM.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SNAPSHOT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SQLAGENT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SQLMANGR.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SQLSERVR.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\SVRNETCN.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\BINN\VSWITCH.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\OTHER\DTCSETUP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SETUP\_ISDEL.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SETUP\MSETUP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SETUP\SETUPSQL.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SETUP\SQLSTP.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SYSTEM\CLICONFG.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SQL\X86\SYSTEM\REGSVR32.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\OA4514.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\GIMEFIX.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\HHUPD.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\OAINST.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\OUT128.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\OUT40.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\Q248120.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\NON2000\RICHEDIT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\WIN2000\1\W2K_ARA.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\WIN2000\12\W2K_FRA.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SUPPORT\WIN2000\9\W2K_ENG.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM\CLICONFG.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM\EXTRACT.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM\IMMC.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM\ODBCAD32.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM95\AWSNTO32.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM95\FIXMAPI.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEM95\VIEWERS\QUIKVIEW.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEMNT\FIXMAPI.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\SYSTEMNT\VIEWERS\QUIKVIEW.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\WINDOWS\HH.EXE c:\Documents and Settings\Propri‚taire\Mes documents\Office\WINDOWS\MSAGENT\AGENTSVR.EXE c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\ADSLAutoconnect206F7.exe c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\antivir_workstation_win7u_en_h.exe c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\bp.exe c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\clientinstall.exe c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\eMule0.47a-Installer.exe c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\Firefox Setup 1.5.0.4.exe c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\mon_budget_familial.exe c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\setupfre.exe c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\SkypeSetup.exe c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\SoccerTrainer2_0_Fr_DemoSetup.exe c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\spybotsd14.exe c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\Thunderbird Setup 1.5.0.4.exe c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\zlsSetup_65_725_000_fr.exe c:\Documents and Settings\Propri‚taire\Mes documents\T‚l‚chargement\memodivx\MemoDivx.exe c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll c:\Documents and Settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll c:\Documents and Settings\Propri‚taire\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll c:\Documents and Settings\Propri‚taire\Application Data\Mozilla\Firefox\Profiles\cs829600.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}\plugins\npietab.dll Vérifications de quelques clefs Recherche de clefs EGDACCESS HKLM\SOFTWARE\Microsoft\Windows\explorer\SharedTaskScheduler
  7. Bonjour, J'ai fait le pré nettoyage comme il est préconisé antivir m'a trouvé 31 détections j'ai fait ensuite le HijakThis merci de me dire si mon ordi est toujours infecté Nath AntiVir PersonalEdition Classic Report file date: dimanche 30 juillet 2006 13:33 Scanning for 397237 virus strains and unwanted programs. Licensed to: AntiVir PersonalEdition Classic Serial number: 0000149996-WURGE-0001 Platform: Windows XP Windows version: (Service Pack 2) [5.1.2600] Username: Nathalie Computer name: GAUTIER-TYNJKWH Version informations: AVSCAN.EXE : 7.0.0.42 557096 30/07/2006 11:26:02 AVSCAN.DLL : 7.0.0.42 53288 30/07/2006 11:26:02 LUKE.DLL : 7.0.0.42 118824 30/07/2006 11:26:05 LUKERES.DLL : 7.0.0.42 25640 30/07/2006 11:26:05 ANTIVIR0.VDF : 6.35.0.1 7371264 30/07/2006 11:26:02 ANTIVIR1.VDF : 6.35.0.4 2048 30/07/2006 11:26:02 ANTIVIR2.VDF : 6.35.0.5 2048 30/07/2006 11:26:02 ANTIVIR3.VDF : 6.35.0.6 2048 30/07/2006 11:26:02 AVEWIN32.DLL : 7.1.0.10 1511936 30/07/2006 11:26:02 AVPREF.DLL : 7.0.0.1 49192 30/07/2006 11:26:02 AVREP.DLL : 6.35.0.1 643112 30/07/2006 11:26:02 AVRPBASE.DLL : 7.0.0.0 2162728 30/07/2006 11:26:02 AVPACK32.DLL : 7.1.0.1 335912 30/07/2006 11:26:02 AVREG.DLL : 6.31.0.90 27688 30/07/2006 11:26:02 NETNT.DLL : 6.32.0.0 6696 30/07/2006 11:26:05 NETNW.DLL : 6.32.0.0 9768 30/07/2006 11:26:05 RCIMAGE.DLL : 7.0.0.71 1642536 30/07/2006 11:26:06 RCTEXT.DLL : 7.0.0.75 77864 30/07/2006 11:26:06 Configuration settings for the scan: Jobname: '%s'.................: Manual Selection Configuration file............: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\PROFILES\folder.avp Boot sectors..................: C Scan memory...................: 1 Process scan..................: 1 Scan all files................: 1 Scan archives.................: 1 Recursion depth...............: 20 Smart extensions..............: 1 Skipped archive types.........: 1000,1001,1002,1003,1004, Macro heuristic...............: 1 File heuristic................: 3 Primary action................: 1 Secondary action..............: 0 Start of the scan: dimanche 30 juillet 2006 13:33 The scan over running processes will be started 14 Processes was scanned Start scanning boot sectors: Boot sector 'C:\' [NOTE] No virus was found! Starting to scan the registry. The registry was scanned ( 43 files ). Starting the file scan: C:\pagefile.sys [WARNING] The file could not be opened! C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\132aca938fecc86a592dd0533eab0a13_34a4a560-72e9-43c5-98bc-646015d37ab9 [WARNING] The file could not be opened! C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9ab06704f918fde26e1892f35d41c1c4_34a4a560-72e9-43c5-98bc-646015d37ab9 [WARNING] The file could not be opened! C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b8f6b3288783365f595d8e0ae929463d_34a4a560-72e9-43c5-98bc-646015d37ab9 [WARNING] The file could not be opened! C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d348e77d1945323f468cb0dc828589ec_34a4a560-72e9-43c5-98bc-646015d37ab9 [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\Propriétaire\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\Propriétaire\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\i5y0841y.default\mail\local folders\inbox [0] Archive type: Netscape/Mozilla Mailbox --> Mailbox_[From: Lookatvideo.com <[email protected]>][subject: =?ISO-8859-1?B?W05vcnRvbiBBbnRpU3BhbV0gTGVzIG5v]10180.mim [DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML [1] Archive type: MIME --> file0.txt [DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML --> file1.html [DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML --> Mailbox_[subject: La newsletter de Look][From: Lookatvideo.com <[email protected]>]10890.mim [DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML [1] Archive type: MIME --> file1.html [DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML --> Mailbox_[From: "VISA Service" <[email protected]>][subject: Attention! Several VISA Credit Card bases have ]18050.mim [DETECTION] Enthält Signatur der Phish-Datei/Email PHISH/VisaFraud.B [1] Archive type: MIME --> file0.html [DETECTION] Enthält Signatur der Phish-Datei/Email PHISH/VisaFraud.B [WARNING] The file was ignored! C:\Documents and Settings\Propriétaire\Application Data\Thunderbird\Profiles\i5y0841y.default\mail\local folders\junk [0] Archive type: Netscape/Mozilla Mailbox --> Mailbox_[From: "VISA Service" <[email protected]>][subject: Attention! Several VISA Credit Card bases have ]396.mim [DETECTION] Enthält Signatur der Phish-Datei/Email PHISH/VisaFraud.B [1] Archive type: MIME --> file0.html [DETECTION] Enthält Signatur der Phish-Datei/Email PHISH/VisaFraud.B [WARNING] The file was ignored! C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\Propriétaire\Local Settings\Temp\24exmscfgl.exe [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\26exmscfgl.exe [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\27exmscfgl.exe [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\28exmscfgl.exe [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\34exmscfgl.exe [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\47exmscfgl.exe [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\51exmscfgl.exe [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\53exmscfgl.exe [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\5DE44YD9.htm [DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\61exmscfgl.exe [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\62exmscfgl.exe [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\67exmscfgl.exe [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\70exmscfgl.exe [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\98exmscfgl.exe [DETECTION] Contains suspicious code HEURISTIC/Crypted.Patched [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\FRVLLII2.htm [DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\ISX6ERT7.htm [DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\KML4BUC6.htm [DETECTION] Contains suspicious code HEURISTIC/Exploit.HTML [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\KSWTTRKS.htm [DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\tmp1.tmp [DETECTION] Contains signature of the worm WORM/Medbot.A [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\WTLFXNHX.htm [DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\YZIDZ1NP.htm [DETECTION] Contains signature of the HTML script virus HTML/Exploit.Mhtml [iNFO] The file was deleted! C:\Documents and Settings\Propriétaire\Local Settings\Temp\Z6JUCD70.htm [DETECTION] Contains signature of the exploits EXP/JS.CVE2005-1790j [iNFO] The file was deleted! C:\WINDOWS\system32\nvsvcd.exe [DETECTION] Contains signature of the worm WORM/Medbot.A [iNFO] The file was deleted! C:\WINDOWS\system32\config\default [WARNING] The file could not be opened! C:\WINDOWS\system32\config\default.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\software [WARNING] The file could not be opened! C:\WINDOWS\system32\config\software.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\system [WARNING] The file could not be opened! C:\WINDOWS\system32\config\system.LOG [WARNING] The file could not be opened! End of the scan: dimanche 30 juillet 2006 14:44 Used time: 1:11:15 min The scan has been done completely. 6346 Scanning directories 285081 Files were scanned 32 viruses and/or unwanted programs was found 23 files were deleted 0 files were repaired 0 files were moved to quarantine 0 files were renamed 20387 Archives were scanned 25 Warnings 3 Notes Logfile of HijackThis v1.99.1 Scan saved at 15:01:06, on 30/07/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\System32\FTRTSVC.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\CAPRPCSK.EXE C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe C:\Program Files\Logitech\iTouch\iTouch.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE C:\Program Files\Logitech\ImageStudio\LogiTray.exe C:\Program Files\Winamp\winampa.exe C:\Program Files\Ulead Systems\Ulead Photo Explorer 7.0\Monitor.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\Macrogaming\SweetIM\SweetIM.exe C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe C:\Program Files\Skype\Phone\Skype.exe C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE C:\Program Files\WiFiConnector\NintendoWFCReg.exe C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE C:\PROGRA~1\Wanadoo\ComComp.exe C:\Program Files\Logitech\ImageStudio\LowLight.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\OLIFAXVX\TOOLBAR.EXE C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\WINDOWS\system32\ntvdm.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\PROGRA~1\Wanadoo\Watch.exe C:\WINDOWS\system32\wuauclt.exe C:\DOCUME~1\PROPRI~1\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis.zip\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/webhp?sourceid=navcli...fr&ie=UTF-8 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe" O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [urlLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe O4 - HKLM\..\Run: [Wanadoo Messager.exe] "C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe" /background O4 - HKLM\..\Run: [CAPON] C:\WINDOWS\System32\Spool\Drivers\w32x86\3\CAPONN.EXE O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver3\LVCOMS.EXE O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [ulead Memory Card Detector] C:\Program Files\Ulead Systems\Ulead Photo Explorer 7.0\Monitor.exe O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe" "ZTE Corporation\ZXDSL852" O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe" O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKCU\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe O4 - Startup: Barre d'Outils Olitec.lnk = C:\OLIFAXVX\TOOLBAR.EXE O4 - Startup: Moniteur Fax-Voix.lnk = C:\OLIFAXVX\MONITEUR.EXE O4 - Global Startup: Fenêtre d'état Canon LBP-800.LNK = C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPPSWK.EXE O4 - Global Startup: Lancer l'utilitaire d'enregistrement.lnk = C:\Program Files\WiFiConnector\NintendoWFCReg.exe O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU) O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {C45B1500-7B63-47C2-AB25-C28CB46AFDEE} (Media Bar) - http://sib1.od2.com/common/musicmanager/in...nagerPlugin.CAB O17 - HKLM\System\CCS\Services\Tcpip\..\{A93E0375-4ADC-47BD-9E91-2909954CED87}: NameServer = 80.10.246.130 80.10.246.3 O18 - Protocol: bw+0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O18 - Protocol: offline-8876480 - {A4AC1505-1B1F-49CA-A630-4B00683E044C} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O21 - SSODL: System - {F8091F39-0B87-406E-A7DC-9665DB5A9FFA} - C:\WINDOWS\system32\system32.dll O23 - Service: ADSLAutoconnect - Unknown owner - C:\Program Files\ADSL Autoconnect\ADSL Autoconnect.exe" -z (file missing) O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Windows Log - Unknown owner - C:\WINDOWS\system32\nvsvcd.exe (file missing) Merci
  8. Merci tout est rentré dans l'ordre
  9. a chaque demarrage j'ai un message norton does not support the repair feature, please uninstall and reinstall j'ai désinstallé avec votre méthode mais j'ai toujours le message au démarrage et impossible d'installer avast
  10. 07/15/06 17:45:53 [info]: BlackLight Engine 1.0.42 initialized 07/15/06 17:45:53 [info]: OS: 5.1 build 2600 (Service Pack 2) 07/15/06 17:45:54 [Note]: 7019 4 07/15/06 17:45:54 [Note]: 7005 0 07/15/06 17:45:57 [Note]: 7006 0 07/15/06 17:45:57 [Note]: 7011 616 07/15/06 17:45:57 [Note]: 7026 0 07/15/06 17:45:57 [Note]: 7026 0 07/15/06 17:46:05 [Note]: FSRAW library version 1.7.1019 07/15/06 18:25:54 [Note]: 7007 0 par contre j'ai un problème avec norton une fenêtre dis qu'il faut le désinstaller et le réinstaller
  11. je n'ai pas pu mettre à jour ewido je n'ai pas trouvé yrojtwfqlg.dat et yrojtwfqlg_nav.dat et yrojtwfqlg_navps.dat je n'ai pas trouvé c:\spyspotterwebinstall.exe Kaspersky KASPERSKY ONLINE SCANNER REPORT Saturday, July 15, 2006 4:11:09 PM Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600) Kaspersky Online Scanner version: 5.0.83.0 Kaspersky Anti-Virus database last update: 15/07/2006 Kaspersky Anti-Virus database records: 195124 Scan Settings Scan using the following antivirus database standard Scan Archives true Scan Mail Bases true Scan Target My Computer C:\ D:\ E:\ Scan Statistics Total number of scanned objects 55928 Number of viruses found 0 Number of infected objects 0 / 0 Number of suspicious objects 0 Duration of the scan process 00:50:00 Infected Object Name Virus Name Last Action C:\Documents and Settings\All Users\Application Data\QSLLPSVCShare Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Microsoft\Modèles\Normal.dot Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\call256.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\chat2048.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\chat256.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\chat512.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\chatmsg1024.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\chatmsg256.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\chatmsg512.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\contactgroup256.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\index2.dat Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\profile16384.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\transfer256.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\user1024.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\user16384.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\user256.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\user4096.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Application Data\Skype\gdazouzou\voicemail256.dbb Object is locked skipped C:\Documents and Settings\gdazouzou\Cookies\index.dat Object is locked skipped C:\Documents and Settings\gdazouzou\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\gdazouzou\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\gdazouzou\Local Settings\Historique\History.IE5\index.dat Object is locked skipped C:\Documents and Settings\gdazouzou\Local Settings\Temp\~DF89F7.tmp Object is locked skipped C:\Documents and Settings\gdazouzou\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\gdazouzou\NTUSER.DAT Object is locked skipped C:\Documents and Settings\gdazouzou\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped C:\System Volume Information\_restore{EA39A09C-50BA-4996-869B-915C83FE3B53}\RP214\change.log Object is locked skipped C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped C:\WINDOWS\SchedLgU.Txt Object is locked skipped C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped C:\WINDOWS\Sti_Trace.log Object is locked skipped C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\DEFAULT Object is locked skipped C:\WINDOWS\system32\config\default.LOG Object is locked skipped C:\WINDOWS\system32\config\SAM Object is locked skipped C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\SECURITY Object is locked skipped C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped C:\WINDOWS\system32\config\software.LOG Object is locked skipped C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\SYSTEM Object is locked skipped C:\WINDOWS\system32\config\system.LOG Object is locked skipped C:\WINDOWS\system32\h323log.txt Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped C:\WINDOWS\wiadebug.log Object is locked skipped C:\WINDOWS\wiaservc.log Object is locked skipped C:\WINDOWS\WindowsUpdate.log Object is locked skipped Scan process completed. Ewido ewido anti-spyware - Scan Report --------------------------------------------------------- + Created at: 14:57:14 15/07/2006 + Scan result: C:\Documents and Settings\gdazouzou\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][2].txt -> TrackingCookie.Adtech : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][1].txt -> TrackingCookie.Advertising : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][2].txt -> TrackingCookie.Atdmt : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][2].txt -> TrackingCookie.Bluestreak : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][1].txt -> TrackingCookie.Com : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][1].txt -> TrackingCookie.Doubleclick : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][2].txt -> TrackingCookie.Euroclick : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][2].txt -> TrackingCookie.Falkag : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][1].txt -> TrackingCookie.Mediaplex : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][1].txt -> TrackingCookie.Newyorkcasino : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][2].txt -> TrackingCookie.Reliablestats : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][1].txt -> TrackingCookie.Smartadserver : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][1].txt -> TrackingCookie.Tradedoubler : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][1].txt -> TrackingCookie.Tribalfusion : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][1].txt -> TrackingCookie.Valueclick : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][2].txt -> TrackingCookie.Weborama : Cleaned. C:\Documents and Settings\gdazouzou\Cookies\[email protected][1].txt -> TrackingCookie.Yieldmanager : Cleaned. C:\RECYCLER\S-1-5-21-2433654532-216968239-3774263056-1006\Dc28.UWA6PV_0001_N76M1904\setup.exe -> Trojan.Fakealert : Cleaned with backup (quarantined). ::Report end Clean Script clean par Malekal_morte - http://www.malekal.com *** SUPPRESSION DES FICHIERS *** Suppressions de trojans/vers sur... C:\WINDOWS\inf\unregmp2.exe FOUND C:\WINDOWS\unvise32qt.exe FOUND C:\WINDOWS\system32\stera.job FOUND *** Suppressions des adware connus... "C:\Program Files\Fichiers communs\*.exe" FOUND Blacklight 7/15/06 16:18:09 [info]: BlackLight Engine 1.0.42 initialized 07/15/06 16:18:09 [info]: OS: 5.1 build 2600 (Service Pack 2) 07/15/06 16:18:09 [Note]: 7019 4 07/15/06 16:18:09 [Note]: 7005 0 07/15/06 16:18:12 [Note]: 7006 0 07/15/06 16:18:12 [Note]: 7011 724 07/15/06 16:18:12 [Note]: 7026 0 07/15/06 16:18:13 [Note]: 7026 0 07/15/06 16:18:24 [Note]: FSRAW library version 1.7.1019 07/15/06 16:28:31 [Note]: 7007 0 Logfile of HijackThis v1.99.1 Scan saved at 16:29:26, on 15/07/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Intel\Wireless\Bin\EvtEng.exe C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\ewido anti-spyware 4.0\guard.exe C:\WINDOWS\System32\FTRTSVC.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe C:\Program Files\Wireless 802.11g Monitor\WLService.exe C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe C:\Program Files\Wireless 802.11g Monitor\WLanCfgG.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\CAP4RSK.EXE C:\WINDOWS\System32\svchost.exe C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe C:\Program Files\Dell\QuickSet\quickset.exe C:\Program Files\Apoint\Apoint.exe C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe C:\Program Files\Dell\Media Experience\DMXLauncher.exe C:\Program Files\Apoint\Apntex.exe C:\WINDOWS\system32\dla\tfswctrl.exe C:\Program Files\ScanSoft\OmniPageSE\opware32.exe C:\Program Files\Macrogaming\SweetIM\SweetIM.exe C:\Program Files\Microsoft Office\Office\WINWORD.EXE C:\Program Files\MSN Messenger\msnmsgr.exe C:\PROGRA~1\Wanadoo\TaskBarIcon.exe C:\Program Files\ewido anti-spyware 4.0\ewido.exe C:\WINDOWS\system32\ctfmon.exe C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe C:\PROGRA~1\Wanadoo\ComComp.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\PROGRA~1\Wanadoo\Watch.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\Digital Line Detect\DLG.exe C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP4LAK.EXE C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP4SWK.EXE C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\gdazouzou\Mes documents\Téléchargement\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.fr/myway R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearch.myway.com/jsp/dellsidebar.jsp?p=DR R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aliceadsl.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.aliceadsl.fr R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell.fr/myway R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.aliceadsl.fr R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: SWEETIE Class - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" O4 - HKLM\..\Run: [intelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [Omnipage] C:\Program Files\ScanSoft\OmniPageSE\opware32.exe O4 - HKLM\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe O4 - HKLM\..\Run: [yrojtwfqlg] c:\windows\system32\yrojtwfqlg.exe yrojtwfqlg O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [PDFSaver] C:\Program Files\Photos de Famille\PdfDrv\Install\PDFSaver.exe O4 - HKCU\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM= O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [msnmsgr] ~"C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized O4 - Global Startup: Digital Line Detect.lnk = ? O4 - Global Startup: Fenêtre d'état de Canon LBP3200.LNK = C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP4LAK.EXE O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?5eefbc3fd0fd42d38f44bcef1b055da O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?5eefbc3fd0fd42d38f44bcef1b055da O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU) O9 - Extra button: Alice ADSL - {5BBC284F-EE45-47B8-B5FA-71603738280C} - http://www.aliceadsl.fr (file missing) (HKCU) O12 - Plugin for .wav: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin2.dll O14 - IERESET.INF: START_PAGE_URL=http://www.aliceadsl.fr O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/d...can_unicode.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{3F04F2AA-1E24-4D8D-BD89-483FAC93F4A1}: NameServer = 213.36.80.1,192.168.1.1 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe (file missing) O23 - Service: Symantec Network Proxy (ccProxy) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe (file missing) O23 - Service: Symantec Password Validation (ccPwdSvc) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe (file missing) O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe (file missing) O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe O23 - Service: R54G Wireless Service - Unknown owner - C:\Program Files\Wireless 802.11g Monitor\WLService.exe O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Unknown owner - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe (file missing) O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe (file missing) O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe (file missing) O23 - Service: SymWMI Service (SymWSC) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe (file missing) O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
  12. Je n'arrive pas à télécharger l'update EWIDO
  13. Merci voici les rapports F-Secure Blacklight 07/15/06 08:08:36 [info]: BlackLight Engine 1.0.42 initialized 07/15/06 08:08:36 [info]: OS: 5.1 build 2600 (Service Pack 2) 07/15/06 08:08:36 [Note]: 7019 4 07/15/06 08:08:36 [Note]: 7005 0 07/15/06 08:08:39 [Note]: 7006 0 07/15/06 08:08:39 [Note]: 7011 1884 07/15/06 08:08:40 [Note]: 7026 0 07/15/06 08:08:40 [Note]: 7026 0 07/15/06 08:08:40 [Note]: 7024 3 07/15/06 08:08:40 [info]: Hidden process: C:\windows\system32\yrojtwfqlg.exe 07/15/06 08:08:40 [Note]: FSRAW library version 1.7.1019 07/15/06 08:12:03 [info]: Hidden file: c:\WINDOWS\system32\yrojtwfqlg_nav.dat 07/15/06 08:12:03 [Note]: 10002 1 07/15/06 08:12:03 [info]: Hidden file: c:\WINDOWS\system32\yrojtwfqlg.dat 07/15/06 08:12:03 [Note]: 10002 1 07/15/06 08:12:04 [info]: Hidden file: C:\windows\system32\yrojtwfqlg.exe 07/15/06 08:12:04 [Note]: 10002 1 07/15/06 08:12:04 [info]: Hidden file: c:\WINDOWS\system32\yrojtwfqlg_navps.dat 07/15/06 08:12:04 [Note]: 10002 1 07/15/06 08:12:20 [info]: Hidden file: c:\WINDOWS\Prefetch\YROJTWFQLG.EXE-2664B0E3.pf 07/15/06 08:12:20 [Note]: 10002 1 07/15/06 08:12:38 [Note]: 7007 0 Chercher C:\WINDOWS\System32\wpa.dbl -->15/07/2006 07:10:42 C:\WINDOWS\System32\perfh00C.dat -->13/07/2006 07:33:08 C:\WINDOWS\System32\perfh009.dat -->13/07/2006 07:33:08 C:\WINDOWS\System32\perfc00C.dat -->13/07/2006 07:33:08 C:\WINDOWS\System32\perfc009.dat -->13/07/2006 07:33:08 C:\WINDOWS\System32\PerfStringBackup.INI -->13/07/2006 07:33:06 C:\WINDOWS\System32\MRT.exe -->07/07/2006 03:21:46 C:\WINDOWS\System32\nvs2.inf -->22/06/2006 20:02:32 C:\WINDOWS\System32\rasmans.dll -->22/06/2006 12:48:06 C:\WINDOWS\System32\WgaLogon.dll -->19/06/2006 16:20:42 C:\WINDOWS\System32\LegitCheckControl.dll -->19/06/2006 16:19:42 C:\WINDOWS\System32\WgaTray.exe -->19/06/2006 16:19:26 C:\WINDOWS\System32\jgpl400.dll -->01/06/2006 20:48:44 C:\WINDOWS\System32\jgdw400.dll -->01/06/2006 20:48:44 C:\WINDOWS\System32\netral.ini -->01/06/2006 12:05:42 C:\WINDOWS\System32\shdocvw.dll -->29/05/2006 17:34:15 C:\WINDOWS\System32\stera.job -->20/05/2006 18:01:38 C:\WINDOWS\System32\lvcoinst.log -->19/05/2006 17:24:35 C:\WINDOWS\System32\mshtml.dll -->19/05/2006 17:07:57 C:\WINDOWS\System32\iphlpapi.dll -->19/05/2006 15:23:35 C:\WINDOWS\ModemLog_Conexant D110 MDC V.9x Modem.txt -->15/07/2006 07:10:17 C:\WINDOWS\0.log -->15/07/2006 07:10:17 C:\WINDOWS\wiadebug.log -->15/07/2006 07:10:16 C:\WINDOWS\WindowsUpdate.log -->15/07/2006 07:10:15 C:\WINDOWS\wiaservc.log -->15/07/2006 07:10:14 C:\WINDOWS\bootstat.dat -->15/07/2006 07:10:07 C:\WINDOWS\SchedLgU.Txt -->14/07/2006 22:42:17 C:\WINDOWS\ntbtlog.txt -->14/07/2006 15:46:01 C:\WINDOWS\wininit.ini -->14/07/2006 12:12:28 C:\WINDOWS\mozver.dat -->14/07/2006 11:53:21 C:\WINDOWS\win.ini -->14/07/2006 11:53:19 C:\WINDOWS\tsoc.log -->12/07/2006 23:09:45 C:\WINDOWS\setupapi.log -->12/07/2006 23:09:45 C:\WINDOWS\ocmsn.log -->12/07/2006 23:09:45 C:\WINDOWS\ocgen.log -->12/07/2006 23:09:45 Le volume dans le lecteur C n'a pas de nom. Le num‚ro de s‚rie du volume est C837-B9C9 R‚pertoire de C:\Program Files 15/07/2006 07:11 <REP> . 15/07/2006 07:11 <REP> .. 24/02/2006 13:06 <REP> A4Desk 15/02/2006 12:35 2ÿ610ÿ456 a4desk_400_full_french.exe 16/11/2005 01:52 <REP> Adobe 21/04/2006 18:19 <REP> Alice 21/04/2006 15:44 <REP> Alice SSID 16/11/2005 01:47 <REP> Apoint 22/01/2006 12:54 <REP> ArcSoft 16/11/2005 01:45 <REP> ATI Technologies 08/10/2003 17:02 106 autorun.inf 26/08/2004 14:25 2ÿ048 BOOTCAT.BIN 16/12/2003 20:27 2ÿ949ÿ120 BOOTIMG.BIN 16/11/2005 01:48 <REP> Broadcom 22/01/2006 12:58 <REP> Canon 24/08/2004 17:24 132ÿ216 ccGSE.dll 13/08/2004 21:23 240ÿ760 ccL30.dll 24/08/2004 17:25 145ÿ016 ccScan.dll 24/08/2004 19:10 111ÿ744 CDStart.exe 26/08/2004 12:38 21ÿ425 CDStart.hlp 20/05/2006 18:03 <REP> Common Files 20/08/2004 12:35 <REP> ComPlus Applications 16/11/2005 01:31 <REP> CONEXANT 21/04/2006 12:39 <REP> CRACK 16/11/2005 01:48 <REP> CyberLink 13/08/2004 14:06 709ÿ728 DefUtDCD.dll 16/11/2005 01:58 <REP> Dell 16/11/2005 01:59 <REP> Dell Inc 16/11/2005 01:46 <REP> Digital Line Detect 22/04/2004 18:22 42ÿ112 ecmldr32.DLL 15/07/2006 07:11 <REP> Fichiers communs 06/03/2006 16:20 <REP> Google 11/01/2006 20:49 <REP> Graphe AT Pro 16/11/2005 01:45 <REP> Intel 16/11/2005 01:46 <REP> Intel, Inc 17/06/2006 18:15 <REP> Internet Explorer 30/03/2006 13:55 <REP> Inventel 18/11/2005 14:49 <REP> IxoVM 16/11/2005 01:59 <REP> Jasc Software Inc 16/11/2005 01:44 <REP> Java 01/03/2006 11:35 243ÿ512 jre-1_5_0_06-windows-i586-p-iftw.exe 31/05/2006 09:51 <REP> KenoGil 13/07/2006 21:57 <REP> Kenosor 20/05/2006 18:49 <REP> Lavasoft 16/11/2005 01:52 <REP> Learn2.com 24/08/2004 19:07 14ÿ261 Lisezmoi.txt 02/03/2006 23:07 <REP> LotoStat 2.0 23/01/2006 23:18 <REP> Macrogaming 21/04/2006 12:39 <REP> Manual 16/11/2005 01:44 <REP> Messenger 20/08/2004 12:37 <REP> microsoft frontpage 20/11/2005 15:11 <REP> Microsoft Office 20/11/2005 15:16 <REP> Microsoft Visual Studio 16/11/2005 01:50 <REP> Microsoft Works 16/11/2005 01:46 <REP> Modem Helper 20/08/2004 12:35 <REP> Movie Maker 14/07/2006 12:08 <REP> Mozilla Thunderbird 20/08/2004 12:34 <REP> MSN 20/12/2005 08:35 <REP> MSN Apps 20/08/2004 12:34 <REP> MSN Gaming Zone 20/01/2006 09:39 <REP> MSN Messenger 20/12/2005 08:35 <REP> MSN Toolbar Suite 18/03/2003 21:14 499ÿ712 msvcp71.dll 21/02/2003 05:42 348ÿ160 msvcr71.dll 16/11/2005 02:00 <REP> MyWaySA 21/04/2006 12:39 <REP> NAV 24/08/2004 19:12 898ÿ176 NAVSetup.exe 20/08/2004 12:35 <REP> NetMeeting 01/06/2006 12:03 <REP> Netral 16/11/2005 01:46 <REP> NetWaiting 30/05/2006 19:16 <REP> neuro one 13/07/2006 08:05 <REP> Norton Internet Security 20/08/2004 12:34 <REP> Online Services 17/04/2006 00:10 <REP> Outlook Express 27/12/2005 09:05 <REP> Photos de Famille 18/08/2004 08:44 197ÿ760 probeGSE.dll 31/05/2006 15:30 <REP> Projet1 16/11/2005 01:52 <REP> QuickTime 16/11/2005 01:51 <REP> Real 22/01/2006 12:56 <REP> ScanSoft 22/04/2006 15:43 <REP> Secrets du Jeu 20/08/2004 12:35 <REP> Services en ligne 16/11/2005 01:32 <REP> Sigmatel 24/12/2005 18:06 <REP> Skype 16/11/2005 02:00 <REP> Sonic 14/07/2006 13:20 <REP> Spybot - Search & Destroy 21/04/2006 12:40 <REP> Support 08/07/2006 22:41 <REP> Symantec 19/11/2005 21:08 <REP> SymNetDrv 26/12/2005 21:50 <REP> Toponymes 26/12/2005 21:22 <REP> Tracker Software 16/11/2005 01:52 <REP> Viewpoint 21/04/2006 12:40 <REP> VirusDef 15/07/2006 07:31 <REP> Wanadoo 30/03/2006 14:01 <REP> Wanadoo Messager 22/06/2006 20:02 <REP> WebMediaPlayer 28/05/2006 11:59 <REP> Windows Media Player 20/08/2004 12:34 <REP> Windows NT 30/05/2006 14:35 <REP> WinRAR 21/04/2006 15:44 <REP> Wireless 802.11g Monitor 20/08/2004 12:37 <REP> xerox 24/01/2006 22:34 <REP> Yahoo! 16/11/2005 02:00 <REP> Your Company Name 17 fichier(s) 9ÿ166ÿ312 octets 86 R‚p(s) 40ÿ506ÿ896ÿ384 octets libres Le volume dans le lecteur C n'a pas de nom. Le num‚ro de s‚rie du volume est C837-B9C9 R‚pertoire de C:\Program Files\fichiers communs 15/07/2006 07:11 <REP> . 15/07/2006 07:11 <REP> .. 17/11/2005 15:00 <REP> Adobe 17/11/2005 17:29 <REP> AOL 20/11/2005 15:16 <REP> Designer 30/03/2006 13:55 278ÿ528 FDEUnInstaller.exe 16/11/2005 01:58 <REP> InstallShield 16/11/2005 01:58 <REP> Jasc Software Inc 16/11/2005 01:43 <REP> Java 20/11/2005 15:15 <REP> Microsoft Shared 20/08/2004 12:35 <REP> MSSoap 16/11/2005 01:51 <REP> Nullsoft 20/08/2004 12:30 <REP> ODBC 16/11/2005 01:51 <REP> Real 22/01/2006 12:57 <REP> ScanSoft Shared 20/08/2004 12:35 <REP> Services 16/11/2005 02:00 <REP> Sonic Shared 20/08/2004 12:30 <REP> SpeechEngines 14/07/2006 15:52 <REP> Symantec Shared 17/04/2006 00:10 <REP> System 16/11/2005 01:53 <REP> TiVo Shared 28/04/2006 20:43 <REP> WinFixer 2005 1 fichier(s) 278ÿ528 octets 21 R‚p(s) 40ÿ506ÿ892ÿ288 octets libres Le volume dans le lecteur C n'a pas de nom. Le num‚ro de s‚rie du volume est C837-B9C9 R‚pertoire de C:\Program Files\common files 20/05/2006 18:03 <REP> . 20/05/2006 18:03 <REP> .. 20/05/2006 18:03 <REP> Companion Wizard 0 fichier(s) 0 octets 3 R‚p(s) 40ÿ506ÿ892ÿ288 octets libres Le volume dans le lecteur C n'a pas de nom. Le num‚ro de s‚rie du volume est C837-B9C9 R‚pertoire de C:\ 20/05/2006 18:43 2ÿ855ÿ080 aawsepersonal.exe 22/11/2005 10:00 4ÿ324ÿ684 GrapheATPro.exe 20/05/2006 16:28 15ÿ269ÿ672 Install_Messenger_Beta.exe 03/07/2006 18:52 18ÿ846ÿ869 izispot.exe 15/12/2005 22:05 1ÿ889ÿ052 lcplugin21b.exe 29/04/2006 00:29 3ÿ088ÿ384 lotoVB.exe 11/02/2006 21:39 438ÿ117 odebit.exe 20/05/2006 18:43 533ÿ574 pllangs.exe 19/05/2006 17:29 9ÿ396ÿ952 SkypeSetup.exe 10/05/2006 07:01 281ÿ320 spyspotterwebinstall.exe 23/01/2006 23:17 3ÿ745ÿ834 SweetImSetup.exe 07/05/2006 10:41 2ÿ988ÿ224 vwdsetup.exe 22/06/2006 20:00 931ÿ729 webmediaplayer_setup.exe 13 fichier(s) 64ÿ589ÿ491 octets 0 R‚p(s) 40ÿ506ÿ892ÿ288 octets libres c:\Documents and Settings\gdazouzou\remote.exe c:\Documents and Settings\gdazouzou\Application Data\Microsoft\Installer\{F86FFD86-1966-4C6C-99D9-44A6E7AB97E3}\ARPPRODUCTICON.exe c:\Documents and Settings\gdazouzou\Bureau\blbeta.exe c:\Documents and Settings\gdazouzou\Bureau\Install_MSN_Messenger.EXE c:\Documents and Settings\gdazouzou\Bureau\chercher\LFiles.exe c:\Documents and Settings\gdazouzou\Local Settings\Temp\~WA6PScannerSetup.exe c:\Documents and Settings\gdazouzou\Local Settings\Temp\EuroMax3.exe c:\Documents and Settings\gdazouzou\Local Settings\Temp\GLF1AGLF1A.EXE c:\Documents and Settings\gdazouzou\Local Settings\Temp\GLF260GLF260.EXE c:\Documents and Settings\gdazouzou\Local Settings\Temp\msnsearch.exe c:\Documents and Settings\gdazouzou\Local Settings\Temp\setup_wm.exe c:\Documents and Settings\gdazouzou\Local Settings\Temp\MMBPlayer\CloseWindowX.exe c:\Documents and Settings\gdazouzou\Local Settings\Temp\NI.UWA6PV_0001_N76M1904\setup.exe c:\Documents and Settings\gdazouzou\Local Settings\Temp\nstmp\uninstall.exe c:\Documents and Settings\gdazouzou\Local Settings\Temp\Onestleschampions.com Toolbar\bin\Onestleschampions.com Toolbar.exe c:\Documents and Settings\gdazouzou\Local Settings\Temp\pft411.tmp\_ISDEL.EXE c:\Documents and Settings\gdazouzou\Local Settings\Temp\pft411.tmp\SETUP.EXE c:\Documents and Settings\gdazouzou\Local Settings\Temp\R‚pertoire temporaire 1 pour collargol.zip\colargol\colargol\setup.exe c:\Documents and Settings\gdazouzou\Local Settings\Temp\~CL46.tmp\g2a_customer.exe c:\Documents and Settings\gdazouzou\Local Settings\Temporary Internet Files\Content.IE5\2XAHIGZX\XoftSpy422_193[1].exe c:\Documents and Settings\gdazouzou\Mes documents\GoogleEarth.exe c:\Documents and Settings\gdazouzou\Mes documents\Bridge\FBFR111FCGM44.EXE c:\Documents and Settings\gdazouzou\Mes documents\T‚l‚chargement\Firefox Setup 1.5.0.4.exe c:\Documents and Settings\gdazouzou\Mes documents\T‚l‚chargement\HijackThis.exe c:\Documents and Settings\gdazouzou\Mes documents\T‚l‚chargement\spybotsd14.exe c:\Documents and Settings\gdazouzou\Mes documents\T‚l‚chargement\Thunderbird Setup 1.5.0.4.exe c:\Documents and Settings\gdazouzou\Mes documents\T‚l‚chargement\XoftSpy422_193.exe Vérifications de quelques clefs Recherche de clefs EGDACCESS HKLM\SOFTWARE\Microsoft\Windows\explorer\SharedTaskScheduler Merci
  14. Bonjour, J'ai des fenetres de systemdoctor et unibet qui s'affiche, j'avais winfixer j'ai suivi la procédure trouvée sur le forum et je l'ai enlevé voici mon log hijackthis Logfile of HijackThis v1.99.1 Scan saved at 16:36:06, on 14/07/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Intel\Wireless\Bin\EvtEng.exe C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\Program Files\Norton Internet Security\ISSVC.exe C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\spoolsv.exe C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe C:\WINDOWS\System32\FTRTSVC.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe C:\Program Files\Wireless 802.11g Monitor\WLService.exe C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe C:\Program Files\Wireless 802.11g Monitor\WLanCfgG.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\system32\CAP4RSK.EXE C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe C:\Program Files\Dell\QuickSet\quickset.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Apoint\Apoint.exe C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe C:\Program Files\Dell\Media Experience\DMXLauncher.exe C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe C:\WINDOWS\system32\dla\tfswctrl.exe C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe C:\Program Files\Apoint\Apntex.exe C:\Program Files\ScanSoft\OmniPageSE\opware32.exe C:\Program Files\Macrogaming\SweetIM\SweetIM.exe C:\PROGRA~1\Wanadoo\TaskBarIcon.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe C:\Program Files\Skype\Phone\Skype.exe C:\PROGRA~1\Wanadoo\ComComp.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\Program Files\Digital Line Detect\DLG.exe C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP4LAK.EXE C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP4SWK.EXE C:\PROGRA~1\Wanadoo\Watch.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Messenger\msmsgs.exe C:\Documents and Settings\gdazouzou\Mes documents\Téléchargement\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.fr/myway R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearch.myway.com/jsp/dellsidebar.jsp?p=DR R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.aliceadsl.fr R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell.fr/myway R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.aliceadsl.fr R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll O2 - BHO: SWEETIE Class - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" O4 - HKLM\..\Run: [intelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe O4 - HKLM\..\Run: [iSUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup O4 - HKLM\..\Run: [iSUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [Omnipage] C:\Program Files\ScanSoft\OmniPageSE\opware32.exe O4 - HKLM\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [PDFSaver] C:\Program Files\Photos de Famille\PdfDrv\Install\PDFSaver.exe O4 - HKCU\..\Run: [sweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM= O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [msnmsgr] ~"C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized O4 - Global Startup: Digital Line Detect.lnk = ? O4 - Global Startup: Fenêtre d'état de Canon LBP3200.LNK = C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP4LAK.EXE O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?5eefbc3fd0fd42d38f44bcef1b055da O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?5eefbc3fd0fd42d38f44bcef1b055da O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU) O9 - Extra button: Alice ADSL - {5BBC284F-EE45-47B8-B5FA-71603738280C} - http://www.aliceadsl.fr (file missing) (HKCU) O12 - Plugin for .wav: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin2.dll O14 - IERESET.INF: START_PAGE_URL=http://www.aliceadsl.fr O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{3F04F2AA-1E24-4D8D-BD89-483FAC93F4A1}: NameServer = 213.36.80.1,192.168.1.1 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe O23 - Service: R54G Wireless Service - Unknown owner - C:\Program Files\Wireless 802.11g Monitor\WLService.exe O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe Merci de votre aide
×
×
  • Créer...